Cisco Unified CM flaw actively exploited to drop webshells (CVE-2026-20230)
ID: dea5e9c7-9eae-5e57-92a0-c471ea64e21e
STIX ID: report--dea5e9c7-9eae-5e57-92a0-c471ea64e21e
Feed Name: Help Net Security
Threat Score
CVE-2026-20230, an unauthenticated SSRF in Cisco Unified Communications Manager, is being actively exploited to deploy a rogue Apache Axis service and drop webshells under /platform-services/axis2-web/, enabling remote code execution; automated scans over Tor and a public proof-of-concept increase the risk, and Cisco has released patches and advised disabling the vulnerable WebDialer service as a mitigation.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
